VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Netapp
> AFF A700S Firmware
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2019-11-07
CVE-2019-18805
Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in net/ipv4/sysctl_net_ipv4.c in the Linux kernel before 5.0.11.
network
low complexity
linux
opensuse
redhat
netapp
broadcom
CWE-190
critical
9.8
9.8
2019-09-30
CVE-2019-16995
Memory Leak vulnerability in multiple products
In the Linux kernel before 5.0.3, a memory leak exits in hsr_dev_finalize() in net/hsr/hsr_device.c if hsr_add_port fails to add a port, which may cause denial of service, aka CID-6caabe7f197d.
network
low complexity
linux
opensuse
netapp
CWE-401
7.5
7.5
2019-09-19
CVE-2019-14821
An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coalesced MMIO write operation.
local
low complexity
linux
redhat
canonical
opensuse
fedoraproject
debian
netapp
oracle
8.8
8.8
2019-09-17
CVE-2019-14835
A buffer overflow flaw was found, in versions from 2.6.34 to 5.2.x, in the way Linux kernel's vhost functionality that translates virtqueue buffers to IOVs, logged the buffer descriptors during migration.
local
low complexity
linux
canonical
debian
fedoraproject
opensuse
netapp
redhat
huawei
7.8
7.8
2019-08-25
CVE-2019-15538
Resource Exhaustion vulnerability in multiple products
An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9.
network
low complexity
linux
canonical
netapp
opensuse
debian
fedoraproject
CWE-400
7.5
7.5
2019-07-17
CVE-2019-13272
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with a parent-child process relationship, where a parent drops privileges and calls execve (potentially allowing control by an attacker).
local
low complexity
linux
debian
fedoraproject
canonical
redhat
netapp
7.8
7.8
2019-07-01
CVE-2019-5497
Insecure Default Initialization of Resource vulnerability in Netapp AFF A700S Firmware and Clustered Data Ontap
NetApp AFF A700s Baseboard Management Controller (BMC) firmware versions 1.22 and higher were shipped with a default account enabled that could allow unauthorized arbitrary command execution.
network
low complexity
netapp
CWE-1188
critical
9.8
9.8
2019-06-03
CVE-2019-12615
NULL Pointer Dereference vulnerability in multiple products
An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6.
network
low complexity
linux
netapp
CWE-476
7.5
7.5
«
Previous
1
2
(current)
»